Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Incident Response Analyst

NTT

Information Security Incident Response Analyst

Make an impact with NTT DATA. Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive.

Job Description

The Information Security Incident Response Analyst supports clients during security incidents by performing technical investigations, analyzing digital forensic evidence, and assisting with containment and remediation activities. This role focuses on identifying indicators of compromise, reconstructing attacker activity, and communicating clear, actionable findings.

The analyst works as part of a global DFIR team, handling a variety of incident types across diverse environments. They contribute to process improvements, maintain strong client communication, and continue building advanced DFIR skills through hands-on investigations and internal project work.

Key Responsibilities
  • Investigates security incidents by performing host, disk, memory, network, and cloud forensic analysis under established processes and guidance.
  • Analyzes artifacts across Windows, Linux, and macOS systems, helping reconstruct timelines and determine root cause.
  • Supports clients through containment and recovery efforts by providing technical recommendations and clear communication.
  • Participates in the team's on-call rotation for urgent incident response needs.
  • Completes internal and client tasks such as tabletop exercises, IR readiness assessments, basic forensic reviews, and environment hardening support.
  • Identifies observable gaps and risks within client environments and recommends improvements to strengthen security posture.
  • Produces accurate documentation—including investigation notes, status updates, and final reports.
  • Collaborates with global DFIR and other teams and stays current on threats, attacker techniques, and emerging forensic tools.
Knowledge and Attributes
  • Solid understanding of digital forensics fundamentals, including host-based analysis across major operating systems.
  • Working knowledge of network forensics, cloud log analysis (e.g., Azure, AWS, GCP), and common forensic tools.
  • Ability to clearly communicate technical findings to both technical and non-technical audiences.
  • Strong analytical and problem-solving skills, especially during time-sensitive investigations.
  • Motivated to continuously learn deeper DFIR techniques and methodologies.
Required Experience
  • Proven experience in incident response and digital forensics, with capability in host-based, image, and log analysis.
  • Experience using SIEM, EDR, IDS/IPS, and other security tools to triage, investigate, and respond to incidents.
  • Ability to perform network analysis using tools such as Wireshark, tcpdump, and other tools.
  • Experience in cybersecurity operations, consulting, DFIR services, or related technical security roles.
Academic Qualifications, Certifications
  • Bachelor's degree or equivalent experience in Information Technology, Computer Science, Cybersecurity, or a related discipline (preferred).
  • Relevant cybersecurity certifications such as:
    • SANS GIAC Security Essentials (GSEC) or equivalent preferred.
    • SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred.
    • SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred.
  • Additional DFIR-related certifications are considered a plus.
Additional UK-Specific Role Requirements
  • Active UK Security Clearance is required to deliver services within sensitive or regulated client environments.
  • Operational Technology (OT) Incident Response & Digital Forensics
    • Background and hands-on experience in OT environments.
    • Experience investigating ICS/SCADA systems and industrial sectors such as manufacturing, energy, utilities, or critical infrastructure.
    • Ability to collect and analyze OT forensic artifacts, interpret OT protocols and system behavior, and assess the impact of cyber incidents on physical processes.
  • Certifications
    • SANS OT/ICS certifications such as GICSP or GRID, IEC 62443 or equivalent required.
Workplace Type

Remote Working

About NTT DATA

NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D.

Equal Opportunity Employer

NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, color, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.

Third Parties Fraudulently Posing as NTT DATA Recruiters

NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters—whether in writing or by phone—in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.

Vacancy posted 22 hours ago
Similar jobs that could be interesting for youBased on the Information Security Incident Response Analyst in United States vacancy
  •  ...Position Details Position Information Recruitment/Posting Title Incident Response Analyst Job Category Staff & Executive - Information Technology...  ...and timely monitoring of information security incidents throughout Rutgers' computing environment... 
    Suggested
    Full time
    Temporary work
    Seasonal work
    Work at office
    Flexible hours
    Shift work

    Rutgers University

    New Brunswick, NJ
    3 days ago
  • ## Job Description# Incident Response Analyst - FULLY REMOTE* Review current configurations of production information systems and networks against compliance standards.* Prepare for the prevention and resolution of security breaches and ensure incident response processes... 
    Suggested
    Remote work

    Apex Systems

    United States
    19 hours ago
  •  ...A leading information security firm in Santa Ana, California is looking for a Security Analyst to enhance its security measures and proactively manage threats. Responsibilities include monitoring security systems...  ...plans, and supporting incident management processes. The... 
    Suggested

    First American

    Santa Ana, CA
    4 days ago
  • As a SOC Analyst (m/f/d), you will strengthen our clients’ information security through your expertise and passion for IT security...  ...analyzing security-critical incidents but also helping to further develop...  .... With a sense of personal responsibility and team spirit, you will be... 
    Suggested
    Work from home
    Flexible hours

    Possehl Secure

    New Bremen, OH
    3 days ago
  • $93k - $125.5k

     ...of the way. Learn more at Job Information Job Code: 00270114 Job Family: Information...  ...Job Function: Information Security Job Description We are seeking a...  ...and experienced Tier 3 SOC Analyst who will also function as the Incident Response Lead. This is a hybrid technical... 
    Suggested
    For contractors
    Work at office
    Remote work
    Visa sponsorship

    Avaya

    United States
    4 days ago
  • $75k - $100k

     ...located in California is seeking an investigator to join their Information Security team. This role focuses on analyzing security telemetry...  ...experience, along with at least 2 years in a SOC or Incident Response role. The position offers a salary range of $75,000 to $1... 

    Isc2 Eastbay Chapter

    San Francisco, CA
    1 day ago
  •  ...professional to manage and enhance the security of data and systems. This role...  ...overseeing threat monitoring, coordinating responses to incidents, and collaborating with various teams...  ..., and a strong background in information security. Exceptional leadership and... 

    Kaiser Permanente

    Renton, WA
    1 day ago
  •  ...global technology leader based in the United States is searching for an Information Security Analyst II to enhance the security operations team. The ideal candidate will have a background in incident investigation and vulnerability remediation. Applicants should possess... 
    Full time

    TE Connectivity

    New York, NY
    2 days ago
  •  ...staffing and consulting firm is seeking an Information Security Analyst to play a critical role in protecting...  ...monitoring SOC alerts, investigating incidents, and managing vulnerabilities....  ...strong background in SOC and incident response. Excellent communication and stakeholder... 
    Remote work

    Insight Global

    Dallas, TX
    1 day ago
  • $80k - $128k

     ...engineering, data analytics, cyber security, management, operational, logistical...  ...an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join Peraton's Department of State...  ...SOPs. Coordinate and report incident information to the Cybersecurity and Infrastructure... 
    Interim role
    Internship
    Work at office
    Worldwide
    Afternoon shift

    Itlearn360

    Beltsville, MD
    4 days ago
  • $67k - $77k

    An urban public research university is seeking a candidate for a position in information security operations, focusing on endpoint security, incident management, and mentoring student workers. The role requires a Bachelor's Degree in Computer Science and four years of... 

    ARMA International

    Cincinnati, OH
    4 days ago
  •  ...Family of Brands in Carrollton, TX seeks an experienced Information Security Analyst II to safeguard against cyber threats. This fully on-...  ...alerts, conducting threat hunting, and assisting with incident response among other responsibilities. Candidates should have 2-... 

    Community Choice Financial Family of Brands

    Carrollton, TX
    3 days ago
  • $120k - $145k

    Cape Fox Corporation is looking for an experienced Information Security Analyst (SME) to join their team in Washington, DC. The ideal candidate...  ...over 4 years of experience in security analysis and incident response. Responsibilities include maintaining threat awareness,... 

    Cape Fox Corporation

    Washington DC
    1 day ago
  • Morris-Hospital seeks an Information Security Analyst to support its compliance program and enhance security measures. The role involves conducting...  ...reviews, risk assessments, and contributing to incident response efforts, ensuring the integrity, confidentiality, and availability... 

    Morris-Hospital

    Morris, IL
    19 hours ago
  •  ...Incident Response Analyst Salisbury, NC (Remote) 90% Remote: must be within driving distance...  ...response experience # MS Security Tools Suite Experience (Defender)...  ...for managing threats, disseminating information, and handling, responding to, and investigating... 
    Contract work
    Work experience placement
    Remote work

    My3Tech Inc

    United States
    4 days ago
  • $100k - $160k

     ...Level 3 Incident Response Analyst page is loaded## Level 3 Incident Response Analystremote type: Fully...  ...and integrate tooling that enhances security capabilities.* Facilitate incident...  ...Endpoint Detection and Response (EDR), Information Technology (IT) Risk Management, Log... 
    Contract work
    Work at office

    Allstate Northern Ireland

    Indiana, PA
    4 days ago
  • $40 per hour

     ...this role, you will evaluate AI-generated security content, solve technical cybersecurity...  ..., Ireland, Australia, and New Zealand Responsibilities Evaluate AI-generated cybersecurity...  ....g., penetration testing, red teaming, incident response, detection engineering, DFIR,... 
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    California, MO
    4 days ago
  •  ...Alignerr is seeking an Incident Response Analyst to work on cutting-edge cybersecurity AI. In this fully remote role, you will analyze realistic security incidents, contribute to AI's capability to detect cyber threats, and provide feedback that shapes AI's reasoning... 
    Contract work
    Remote work

    Alignerr

    New York, NY
    1 day ago
  •  ...Purpose: Resolve security incidents and recommend improvements...  .... Execute incident response plans and contribute to scalable...  .... Coordinate with Information Security Architects, Engineers...  ..., GIAC Certified Intrusion Analyst (GCIA), or GIAC Certified... 
    Remote work

    Macpower Digital Assets Edge

    United States
    19 hours ago
  •  ...A company is looking for an Incident Response Analyst for a fully remote position. Key Responsibilities Review and ensure compliance of production information systems and networks Prepare for and manage security breaches, initiating incident response processes Collaborate... 
    Remote work

    Virtual Vocations Inc

    United States
    1 day ago
  •  ...Senior Incident Response Analyst Location: Remote (USA-based, on-call support required) Employment Type: Full-time The Senior Incident...  ...cloud (AWS/Azure) environments, contributing to scalable security enhancements and threat detection. This individual will... 
    Full time
    Remote work
    Shift work

    Veracity

    United States
    2 days ago
  • $40k - $140k

     ...Recruit - Real Estate is seeking a SOC Analyst Tier 3 to enhance cybersecurity efforts...  ...conducting threat hunts, and addressing security gaps primarily in a collaborative,...  ...have experience in SOC monitoring and incident response. The position provides valuable hands-on... 

    Get It Recruit - Real Estate

    Elgin, SC
    1 day ago
  • $100k - $125k

     ...Senior Incident Response Analyst At Zimmer Biomet, we believe in pushing the boundaries of innovation and driving our mission forward. As...  ...rotations. How You'll Create Impact Investigate security alerts and confirmed incidents; determine scope, impact, and... 
    Remote work
    Flexible hours

    Zimmer Biomet

    United States
    1 day ago
  •  ...Sr Analyst, Governance Risk and Compliance TransUnion is a major...  ...for an Analyst, Global Incident Response to join our growing Global Incident...  ...in DFIR operations, data security, privacy compliance, project...  ...your recruiter will inform you of this. We do not accept... 
    Full time
    Contract work
    Part time
    Bank staff
    Remote work
    Flexible hours

    TransUnion

    United States
    1 day ago
  • $30 - $39 per hour

     ...Overview Job Title: ITSM Incident Response Analyst Location: Remote Type: Independent Contract - Corp to Corp/1099 Start...  ...Bachelor's degree or technical training in Computer Science, Information Systems Management preferred ITIL and Service Now certifications... 
    Contract work
    For contractors
    Work experience placement
    Local area
    Immediate start
    Remote work

    Cayuse Holdings

    Carson City, NV
    19 hours ago
  •  ...BlueVoyant is looking for a SOC Security Analyst L2 to enhance clients' cybersecurity in a remote setting. This role includes monitoring...  ...alerts, conducting investigations, and ensuring a robust incident response. The ideal candidate should have a strong technical... 
    Remote work

    BlueVoyant

    New York, NY
    1 day ago
  •  ...Alignerr is looking for an Incident Response Analyst to analyze security events and help train AI systems designed for cybersecurity. The role involves evaluating AI-generated responses and providing expert feedback to enhance AI model precision. The ideal candidate should... 
    Remote work
    Flexible hours

    Alignerr

    United States
    1 day ago
  •  ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of intelligent security tools - and we need experienced incident responders to help get it right. Your hands-on knowledge of real... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Miami, FL
    2 days ago
  •  ...TrendAI™, the global AI security leader and enterprise...  ...Managed Detection & Response (MDR) team at exactly...  ...detection are enabling analysts to identify genuine threats...  ...insights that turn incidents into lasting security...  ...Science, Cybersecurity, Information Security, or related... 
    H1b
    Work at office
    Night shift
    Rotating shift
    3 days per week

    Trend Micro Incorporated

    Irving, TX
    2 days ago
  •  ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build and refine AI systems...  ...an Incident Response Analyst, you'll bring your hands-on security operations experience to help ensure these AI models think... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    New York, NY
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Incident Response Analyst. Be the first to apply!